
Website Farmers Insurance
Job Description:
Join a team of diverse professionals at Farmers to acquire skills on the job and apply your learned knowledge to future roles at Farmers. Farmers Insurance also offers extensive training opportunities through the award winning University of Farmers named by Training magazine amongst top 10 corporate training units in the world.
Job Responsibilities:
The GRC Security Specialist will utilize a wide range of risk-based methodologies to independently perform intermediate to advanced analysis, validation, and reporting on a broad range of interdependent cybersecurity risks. Additionally, the Specialist will:
- Lead annual remediation and reporting of enterprise information security key risk indicators (KRIs) by working with all security teams and the Enterprise Risk team, as well as leading monthly calls to update the CISO and security leadership on remediation status
- Lead local information security awareness initiatives in partnership with the global security awareness team, including annual Farmers security awareness training, IT manager/privileged user training, business unit security champions, security awareness communications, phishing campaigns, cyber security awareness month, and other security awareness initiatives as needed
- Lead annual security policy review and creation of net new security policies as needed
- Partner with cloud security team to develop and implement a cloud security governance framework, policies, and procedures
- Document agendas and minutes for various security steering committees
- Interpret irregular and indeterminate patterns of noncompliance to determine their impact on levels of risk and overall effectiveness of the enterprise’s cybersecurity program.
- Act as a security risk and compliance SME for IT groups seeking intermediate to advanced security input.
- Demonstrate the value of information technology (IT) security throughout all levels of the organization. Influence business and IT teams to create innovative and sophisticated solutions to complex problems.
- Build and maintain relationships with a wide network of business and IT stakeholders. Participate in cross-functional projects that incorporate local and global teams.
- Lead creation of milestones and timelines for assigned security projects/initiatives.
- Utilize security reporting data to recommend creative solutions or policy changes.
- Design and evaluate policies and processes to ensure legal and regulatory security compliance requirements are met.
- Participate in audits of cyber programs and projects. Demonstrate ownership of assigned audit actions or regulator requests by diligently providing responses and evidence within established timeframes.
- Create, review, and update security policies, procedures, standards and guidelines.
- Identify opportunities to proactively mitigate moderate to major risks by partnering with the cyber security, cloud security, application security, and security engineering teams
Job Requirements:
- Strong familiarity with governance and controls frameworks, such as COBIT, COSO, ITIL, NIST, and ISO.
- Strong project management, time management, presentation, and organizational skills.
- 3 – 7 years of experience in governance, risk management, and compliance; external/internal auditing; or, advisory consulting firm
- PC skills and hands-on experience building tools and presentations with Microsoft Word, Excel, PowerPoint, Project, and Access
- Solid understanding of assessing IT or security risk in an enterprise-level environment.
- Solid experience in documenting controls, policies, reports, presentations, agendas, and meeting minutes.
Job Details:
Company: Farmers Insurance
Vacancy Type: Full Time
Job Location: Ft. Worth, TX, US
Application Deadline: N/A
vacancyoptions.com